CVE Feed

    Dashboard / CVE

    4.9
    Medium

    CVE-2007-2691

    Last Modified: 23 Apr 2026

    MySQL before 4.1.23, 5.0.x before 5.0.42, and 5.1.x before 5.1.18 does not require the DROP privilege for RENAME TABLE statements, which allows remote authenticated users to rename arbitrary tables.

    Published: 16 May 2007
    6
    Medium

    CVE-2007-2692

    Last Modified: 23 Apr 2026

    The mysql_change_db function in MySQL 5.0.x before 5.0.40 and 5.1.x before 5.1.18 does not restore THD::db_access privileges when returning from SQL SECURITY INVOKER stored routines, which allows remote authenticated users to gain privileges.

    Published: 16 May 2007
    6.8
    Medium

    CVE-2007-2696

    Last Modified: 23 Apr 2026

    The JMS Server in BEA WebLogic Server 6.1 through SP7, 7.0 through SP6, and 8.1 through SP5 enforces security access policies on the front end, which allows remote attackers to access protected queues via direct requests to the JMS back-end server.

    Published: 16 May 2007
    5.1
    Medium

    CVE-2007-2697

    Last Modified: 23 Apr 2026

    The embedded LDAP server in BEA WebLogic Express and WebLogic Server 7.0 through SP6, 8.1 through SP5, 9.0, and 9.1, when in certain configurations, does not limit or audit failed authentication attempts, which allows remote attackers to more easily conduct brute-force attacks against the administrator password, or flood the server with login attempts and cause a denial of service.

    Published: 16 May 2007
    4.6
    Medium

    CVE-2007-2701

    Last Modified: 23 Apr 2026

    The JMS Message Bridge in BEA WebLogic Server 7.0 through SP7 and 8.1 through Service Pack 6, when configured without a username and password, or when the connection URL is not defined, allows remote attackers to bypass the security access policy and "send unauthorized messages to a protected queue."

    Published: 16 May 2007
    3.5
    Low

    CVE-2007-2702

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the GroupSpace application in BEA WebLogic Portal 9.2 GA allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors related to the rich text editor.

    Published: 16 May 2007
    3.6
    Low

    CVE-2007-2703

    Last Modified: 23 Apr 2026

    BEA WebLogic Portal 9.2 GA can corrupt a visitor entitlements role if an administrator provides a long role description, which might allow remote authenticated users to access privileged resources.

    Published: 16 May 2007
    4
    Medium

    CVE-2007-2700

    Last Modified: 23 Apr 2026

    The WLST script generated by the configToScript command in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not encrypt certain attributes in configuration files when creating a new domain, which allows remote authenticated users to obtain sensitive information.

    Published: 16 May 2007
    7.8
    High

    CVE-2007-2688

    Last Modified: 23 Apr 2026

    The Cisco Intrusion Prevention System (IPS) and IOS with Firewall/IPS Feature Set do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic.

    Published: 16 May 2007
    7.8
    High

    CVE-2007-2690

    Last Modified: 23 Apr 2026

    Multiple IBM ISS Proventia Series products, including the A, G, and M series, do not properly handle certain full-width and half-width Unicode character encodings, which might allow remote attackers to evade detection of HTTP traffic.

    Published: 16 May 2007
    3.5
    Low

    CVE-2007-2693

    Last Modified: 23 Apr 2026

    MySQL before 5.1.18 allows remote authenticated users without SELECT privileges to obtain sensitive information from partitioned tables via an ALTER TABLE statement.

    Published: 16 May 2007
    4.3
    Medium

    CVE-2007-2694

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 through SP7, 8.1 through SP5, 9.0 GA, and 9.1 GA allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 16 May 2007
    5.1
    Medium

    CVE-2007-2695

    Last Modified: 23 Apr 2026

    The HttpClusterServlet and HttpProxyServlet in BEA WebLogic Express and WebLogic Server 6.1 through SP7, 7.0 through SP7, 8.1 through SP5, 9.0, and 9.1, when SecureProxy is enabled, may process "external requests on behalf of a system identity," which allows remote attackers to access administrative data or functionality.

    Published: 16 May 2007
    5
    Medium

    CVE-2007-2698

    Last Modified: 23 Apr 2026

    The Administration Console in BEA WebLogic Server 9.0 may show plaintext Web Service attributes during configuration creation, which allows remote attackers to obtain sensitive credential information.

    Published: 16 May 2007
    7.1
    High

    CVE-2007-2699

    Last Modified: 23 Apr 2026

    The Administration Console in BEA WebLogic Express and WebLogic Server 9.0 and 9.1 does not properly enforce certain Domain Security Policies, which allows remote administrative users in the Deployer role to upload arbitrary files.

    Published: 16 May 2007
    7.8
    High

    CVE-2007-2705

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the Test View Console in BEA WebLogic Integration 9.2 before SP1 and WebLogic Workshop 8.1 SP2 through SP6, when "deployed in an exploded format," allows remote attackers to list a WebLogic Workshop Directory (wlwdir) parent directory via unspecified vectors.

    Published: 16 May 2007
    5.4
    Medium

    CVE-2007-2704

    Last Modified: 23 Apr 2026

    BEA WebLogic Server 9.0 through 9.2 allows remote attackers to cause a denial of service (SSL port unavailability) by accessing a half-closed SSL socket.

    Published: 16 May 2007
    4.3
    Medium

    CVE-2007-2756

    Last Modified: 23 Apr 2026

    The gdPngReadData function in libgd 2.0.34 allows user-assisted attackers to cause a denial of service (CPU consumption) via a crafted PNG image with truncated data, which causes an infinite loop in the png_read_info function in libpng.

    Published: 16 May 2007
    5
    Medium

    CVE-2007-2445

    Last Modified: 23 Apr 2026

    The png_handle_tRNS function in pngrutil.c in libpng before 1.0.25 and 1.2.x before 1.2.17 allows remote attackers to cause a denial of service (application crash) via a grayscale PNG image with a bad tRNS chunk CRC value.

    Published: 15 May 2007
    4.3
    Medium

    CVE-2007-2680

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in the management interface in Canon Network Camera Server VB100 and VB101 with firmware 3.0 R69 and earlier, and VB150 with firmware 1.1 R39 and earlier, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 15 May 2007
    7.5
    High

    CVE-2007-2681

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in blogs/index.php in b2evolution 1.6 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the core_subdir parameter.

    Published: 15 May 2007
    7.5
    High

    CVE-2007-2678

    Last Modified: 23 Apr 2026

    Buffer overflow in the isChecked function in toolbar.dll in Netsprint Toolbar 1.1 might allow remote attackers to execute arbitrary code via unspecified vectors.

    Published: 15 May 2007
    6.8
    Medium

    CVE-2007-2679

    Last Modified: 23 Apr 2026

    PHP file inclusion vulnerability in index.php in Ivan Peevski gallery 0.3 in Simple PHP Scripts (sphp) allows remote attackers to execute arbitrary PHP code via a UNC share pathname or a local file pathname in the gallery parameter, which is accessed by the file_exists function. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 15 May 2007
    7.8
    High

    CVE-2007-2656

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the Hewlett-Packard (HP) Magview ActiveX control in hpqvwocx.dll 1.0.0.309 allows remote attackers to cause a denial of service (application crash) and possibly have other impact via a long argument to the DeleteProfile method.

    Published: 14 May 2007
    5
    Medium

    CVE-2007-2659

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in index.php in PHP Advanced Transfer Manager (phpATM) 1.30 allows remote attackers to read arbitrary files and obtain script source code via a .. (dot dot) in the directory parameter in a downloadfile action.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2661

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in archshow.asp in BlogMe 3.0 allows remote attackers to execute arbitrary SQL commands via the var parameter, a different vector than CVE-2006-5976.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2662

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in EfesTECH Haber 5.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to the top-level URI.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2663

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in language/1/splash.lang.php in Beacon 0.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the languagePath parameter.

    Published: 14 May 2007
    7.6
    High

    CVE-2007-2666

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in LexRuby.cxx (SciLexer.dll) in Scintilla 1.73, as used by notepad++ 4.1.1 and earlier, allows user-assisted remote attackers to execute arbitrary code via certain Ruby (.rb) files with long lines. NOTE: this was originally reported as a vulnerability in notepad++.

    Published: 14 May 2007
    9.3
    Critical

    CVE-2007-2667

    Last Modified: 23 Apr 2026

    Buffer overflow in the DB Software Laboratory VImpX ActiveX control in VImpX.ocx 4.7.3 allows remote attackers to execute arbitrary code via a long LogFile parameter.

    Published: 14 May 2007
    6.8
    Medium

    CVE-2007-2668

    Last Modified: 23 Apr 2026

    Buffer overflow in webdesproxy 0.0.1 allows remote attackers to execute arbitrary code via a long URL, possibly involving the process_connection_request function in webdesproxy.c.

    Published: 14 May 2007
    7.1
    High

    CVE-2007-2671

    Last Modified: 23 Apr 2026

    Mozilla Firefox 2.0.0.3 allows remote attackers to cause a denial of service (application crash) via a long hostname in an HREF attribute in an A element, which triggers an out-of-bounds memory access.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2672

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.php in PHP Coupon Script 3.0 allows remote attackers to execute arbitrary SQL commands via the bus parameter in a viewbus page.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2673

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in includes/funcs_vendors.php in Censura 1.15.04, and other versions before 1.16.04, allows remote attackers to execute arbitrary SQL commands via the vendorid parameter in a vendor_info cmd action to censura.php.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2674

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in detail.php in Pre Shopping Mall 1.0 allows remote attackers to execute arbitrary SQL commands via the prodid parameter.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2675

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in search.php in Pre Classifieds Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2676

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in skins/header.php in Open Translation Engine (OTE) 0.7.8 allows remote attackers to execute arbitrary PHP code via a URL in the ote_home parameter.

    Published: 14 May 2007
    7.8
    High

    CVE-2007-2658

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the ID Automation Linear Barcode 1.6.0.5 ActiveX control in IDAutomationLinear6.dll allows remote attackers to cause a denial of service via a long argument to the SaveEnhWMF method.

    Published: 14 May 2007
    6.8
    Medium

    CVE-2007-2660

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in pcltrace.lib.php in the PclTar module in Vincent Blavet PhpConcept Library, as used in CJG EXPLORER PRO 3.3 and earlier and probably other products, allows remote attackers to execute arbitrary PHP code via a URL in the g_pcltar_lib_dir parameter. NOTE: CVE disputes this issue since there is no include statement in pcltrace.lib.php. NOTE: the pcltar.lib.php vector is already covered by CVE-2007-2199

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2665

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in block.php in PhpFirstPost 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the Include parameter.

    Published: 14 May 2007
    4.3
    Medium

    CVE-2007-2670

    Last Modified: 23 Apr 2026

    PHPChain 1.0 and earlier allows remote attackers to obtain the installation path via invalid values of the catid parameter to (1) settings.php or (2) cat.php, as demonstrated by XSS manipulations.

    Published: 14 May 2007
    7.8
    High

    CVE-2007-2657

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the PrecisionID Barcode 1.3 ActiveX control in PrecisionID_DataMatrix.DLL allows remote attackers to cause a denial of service via a long argument to the SaveBarCode method.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2664

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in includes/common.php in Yaap 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter, possibly related to the __autoload function.

    Published: 14 May 2007
    4.3
    Medium

    CVE-2007-2669

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PHPChain 1.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the catid parameter to (1) settings.php or (2) cat.php. NOTE: certain parameter values also trigger path disclosure.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2677

    Last Modified: 23 Apr 2026

    Multiple PHP remote file inclusion vulnerabilities in phpChess Community Edition 2.0 allow remote attackers to execute arbitrary PHP code via a URL in (1) the config parameter to includes/language.php, or the Root_Path parameter to (2) layout_admin_cfg.php, (3) layout_cfg.php, or (4) layout_t_top.php in skins/phpchess/. NOTE: vector 1 has been disputed by CVE, since the code is defined within a function that is not called from within includes/language.php.

    Published: 14 May 2007
    6.8
    Medium

    CVE-2007-2646

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in yEnc32 1.0.7.207 allows user-assisted remote attackers to execute arbitrary code via a long filename in an NTX file.

    Published: 14 May 2007
    9.3
    Critical

    CVE-2007-2648

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in the Clever Database Comparer 2.2 ActiveX control (comparerax.ocx) allows remote attackers to execute arbitrary code via a long argument to the ConnectToDatabase function.

    Published: 14 May 2007
    4.4
    Medium

    CVE-2007-2654

    Last Modified: 23 Apr 2026

    xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems.

    Published: 14 May 2007
    7.5
    High

    CVE-2007-2655

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in NetWin Webmail 3.1s-1 in SurgeMail before 3.8i2 has unknown impact and remote attack vectors, possibly a format string vulnerability that allows remote code execution.

    Published: 14 May 2007
    Unknown

    CVE-2007-2653

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2007-2438. Reason: This candidate is a duplicate of CVE-2007-2438. Notes: All CVE users should reference CVE-2007-2438 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 14 May 2007